Link to home
Start Free TrialLog in
Avatar of bsmiley00
bsmiley00Flag for United States of America

asked on

User permissions - shutdown/taskbar

Hello,

We have a situation where a user does not have access to shutdown or change taskbar settings on his machine.  He is also having a problem running his contact application (palm.exe)

We just moved his laptop over to a new domain and I recreated his profile.
I have given him local admin rights.  Looking at the local Security Policy has Admins and Power Users able to shutdown.
When logged in as the local admin palm.exe works fine.
When logged in as domain admin palm.exe does not work (get dll loading errors - same as user)

thanks
Avatar of Shift-3
Shift-3
Flag of United States of America image

Run GPResult or use the Group Policy Results node of the GPMC to see exactly what policy settings are applying to the affected user.
Avatar of bsmiley00

ASKER

Here are the results from GPResult:

RSOP results for SUNRIPEPRODUCE\tgiardina on TRCXL75W91 : Logging Mode
-----------------------------------------------------------------------

OS Type:                     Microsoft Windows XP Professional
OS Configuration:            Member Workstation
OS Version:                  5.1.2600
Domain Name:                 SUNRIPEPRODUCE
Domain Type:                 Windows 2000
Site Name:                   Default-First-Site-Name
Roaming Profile:            
Local Profile:               C:\Documents and Settings\tgiardina.SUNRIPEPRODUCE
Connected over a slow link?: No


COMPUTER SETTINGS
------------------
    CN=TRCXL75W91,CN=Computers,DC=sunripeproduce,DC=com
    Last time Group Policy was applied: 5/22/2009 at 9:17:15 AM
    Group Policy was applied from:      NOGFILESVR.sunripeproduce.com
    Group Policy slow link threshold:   500 kbps

    Applied Group Policy Objects
    -----------------------------
        Default Domain Policy

    The following GPOs were not applied because they were filtered out
    -------------------------------------------------------------------
        Local Group Policy
            Filtering:  Not Applied (Empty)

    The computer is a part of the following security groups:
    --------------------------------------------------------
        BUILTIN\Administrators
        Everyone
        BUILTIN\Users
        NT AUTHORITY\NETWORK
        NT AUTHORITY\Authenticated Users
        TRCXL75W91$
        Domain Computers
       

USER SETTINGS
--------------
    CN=Todd Giardina,OU=CA,OU=Remote Users,DC=sunripeproduce,DC=com
    Last time Group Policy was applied: 5/22/2009 at 8:02:30 AM
    Group Policy was applied from:      imm2k3dc.sunripeproduce.com
    Group Policy slow link threshold:   500 kbps

    Applied Group Policy Objects
    -----------------------------
        Remote Users
        Remote Users
        Default Domain Policy

    The following GPOs were not applied because they were filtered out
    -------------------------------------------------------------------
        Local Group Policy
            Filtering:  Not Applied (Empty)

    The user is a part of the following security groups:
    ----------------------------------------------------
        Domain Users
        Everyone
        BUILTIN\Administrators
        BUILTIN\Users
        NT AUTHORITY\INTERACTIVE
        NT AUTHORITY\Authenticated Users
        LOCAL
ASKER CERTIFIED SOLUTION
Avatar of Shift-3
Shift-3
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
thanks,

My network admin had a policy associated with the Remote Users gp that disabled shutting down of machines.  Worked when remote users were not on the domain.  Now...not so much!

Thanks for the gpresult info.  That let me research differences between user accounts.

Palm.exe issue is still there, but obviously is related to something else.